Simple Jwt Login

WordPress plugin · simple-jwt-login · WordPress.org ↗
1
Critical
0
High
1
Known total
0
Unfixed
Running Simple Jwt Login on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
CRITICAL
CVSS 9.1
Simple JWT Login < 3.6.8 - Unauthenticated Account Takeover via Missing Google id_token Audience Validation
CVE.org
>=0, <3.6.8 v3.6.8 CVE-2026-19714 Aug 16, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.